About me

I am a Ph.D. student graduate from the Department of Computer Science, Virginia Tech. My advisor is Prof. Na Meng . My research interests lie in the intersection of software engineering, programming language, and software security, My research focus on creating an effective framework that can accurately locate API vulnerabilities, offer to fix guidance to developers, and demonstrate the vulnerabilities. I received my M.S degree from the Missouri S&T Computer Science department in 2018, and my bachelor's degree from Northeastern University, China, in 2016.

I am on the job market (my PhD journey will end this year)!

[Resume] [Google Scholar]


Recent News

... [12/2023] Our paper on "Broadly Enabling KLEE to Effortlessly Find Unrecoverable Errors in Rust" was accepted by ICSE SEIP'24

... [11/2023] Our paper on "MASTERKEY: Automated Jailbreaking of Large Language Model Chatbots" was accepted by NDSS'24

... [04/2023] I was honored with 2023 Bitshares Fellowship


Internship Experience

... Application Security Team @ ByteDance

May 2021 - August 2021

... Talent Insight Team @ Linkedin

May 2022 - August 2022

Ongoing Research Projects

Automatic Security Test Generation

Vulnerability demonstration for Large Language Models


Selected Publications

Broadly Enabling KLEE to Effortlessly Find Unrecoverable Errors in Rust

Ying Zhang, Peng Li, Yu Ding, Wang Lingxiang, Dan Williams, and Na Meng

46th International Conference on Software Engineering (ICSE), SEIP, 2024

MASTERKEY: Automated Jailbreak Across Multiple Large Language Model Chatbots

Gelei Deng, Yi Liu, Yuekang Li, Kailong Wang, Ying Zhang, Zefeng Li, Haoyu Wang, Tianwei Zhang, and Yang Liu

The Network and Distributed System Security Symposium (NDSS)2024

Example-Based Vulnerability Detection and Repair in Java Code

Ying Zhang, Ya Xiao, Mahir Kabir, Danfeng (Daphne)Yao, and Na Meng

30th IEEE/ACM International Conference on Program Comprehension (ICPC) 2022

Automatic Detection of Java Cryptographic API Misuses: Are We There Yet?

Ying Zhang, Mahir Kabir, Ya Xiao, Danfeng (Daphne)Yao, and Na Meng

Transactions on Software Engineering (TSE) 2022

Data-Driven Vulnerability Detection and Repair in Java Code

Ying Zhang, Mahir Kabir, Ya Xiao, Danfeng (Daphne)Yao, and Na Meng

RWS - A Roulette Wheel Scheduler For Preventing Execution Pattern Leakage

Ying Zhang, Lingxiang Wang, Wei Jiang, and Zhishan Guo

Proceedings of the 24th IEEE Real-Time and Embedded Technology and Applications Symposium (RTAS), BP Session, Porto, Portugal, 2018.